Nicheloom

Market intelligence for builders — see what's gaining traction before it's crowded.

Cloudstic

Open-source CLI for encrypted, cloud-native backups

Details

External ID
47230835
Source
HN
Company
—
Product
Cloudstic
Website domain
github.com
Launched
March 3, 2026
Cohort
—
Upvotes
5
Upvotes percentile
0.1070110701107011
Tags
—
Fetched at
Sept. 7, 2026, 9:26 p.m.
Updated at
Sept. 7, 2026, 9:26 p.m.

Description

Hi HN, I built Cloudstic (https://github.com/Cloudstic/cli), an open-source Go CLI that creates encrypted, deduplicated, point-in-time backups of your Google Drive, OneDrive, and local files.The ProblemGoogle Drive and OneDrive are sync tools, not backup tools. If you accidentally delete a folder, it’s gone everywhere. If ransomware encrypts your local files, the "mistake" propagates to the cloud immediately. There is no easy way to say: "Restore my entire Drive exactly as it looked on January 15th."Why not just use Restic or Borg?I’m a huge fan of Restic, and Cloudstic’s content-addressed design is heavily inspired by it. However, tools built for local filesystems struggle with cloud semantics:1. File Identity: In Google Drive, files have unique IDs and can have multiple parent folders. They don't have a single canonical path.2. Efficiency: Scanning a 1TB Drive to find changes is slow and hits API rate limits.3. Structure: Restic’s tree structure mirrors a directory hierarchy. Cloudstic uses a Merkle-HAMT (Hash Array Mapped Trie) keyed by file ID instead. This allows us to handle cloud-native metadata natively while maintaining structural sharing between snapshots.Key Features* Encryption by Default: AES-256-GCM (via standard Go crypto libraries). You can recover via password or a BIP39 recovery phrase. Your storage provider (S3, B2, SFTP) sees only encrypted blobs.* Cross-Source Deduplication: We use FastCDC (Content-Defined Chunking). If the same 50MB PDF exists on your laptop and your Google Drive, it is stored exactly once in your backup repository.* Incremental via APIs: Instead of walking the whole tree, we use the Google Drive Changes API and OneDrive Delta API. It only fetches what has changed since your last snapshot.* Crash-Safe & Immutable: All objects in the repository are append-only. An interrupted backup or a network drop leaves zero corruption.* Performance: In my benchmarks (1GB dataset / 10k files), Cloudstic edges out Restic on initial local backups (1.2s vs 1.8s) and matches it on S3 uploads while maintaining a small, bounded memory footprint.Quick StartCloudstic is a single static binary. You can point it at local disk, S3/R2/MinIO, Backblaze B2, or SFTP. brew install cloudstic/tap/cloudstic cloudstic init --backend s3 --bucket my-backups cloudstic backup --source gdrive cloudstic list-snapshots cloudstic restore <snapshot-id> --to ./recovery I’m also working on a managed version (https://cloudstic.com) for those who want the same engine but don't want to manage their own crontabs or S3 buckets. The code is MIT Licensed. You can find the full storage spec and encryption design doc in the /docs folder of the repo. I’d love feedback on the HAMT implementation and the crypto design!

Enrichment

Theme
self-hosted infrastructure and security tools
Vertical
—
Function
Data infrastructure
Audience
Developer
AI stance
Not AI
Project type
Hobby / open-source project
Normalized one-liner
open-source cli for encrypted cloud-native backups
Manually corrected
False

Could you build this?

Yes A CLI tool that calls cloud storage APIs (Google Drive, OneDrive), chunks data, encrypts it locally, and stores snapshots is standard systems programming that AI assistants handle well.

Discussion

No comments on this launch.

Competitors

Other products that read as similar to this one — 162 launches clear the similarity bar, closest 8 shown.

Attention rank: #148 of 163 (itself plus its competitors, highest first — normalized so YC and Product Hunt are compared fairly).

Launched 124 days after the earliest competitor.

Other launches for this product